Readers request access to licensed editions from inside the Bible Explorer. Approve to issue a signed, time-boxed entitlement to that reader; deny to decline. Only the corpus owner may act.
Issued entitlements
Live grants. Revoking is immediate — gated reads re-check this ledger and fail closed.
Trust-signal feedback
Every signed feedback assertion posted across the corpus — readers challenging or affirming a trust signal on a specific (entity, signal, verse) triple. Filter to review.
Connect as the corpus owner to review feedback.
Signing identities · authorize the keys
Every signing identity on the platform — content issuers (qbsb.impact, lbsb.impact), the independent validator (demo-validator.impact), and the resolver agent (scripture-resolver.impact) — signs with a key held in an HSM-backed Cloud KMS; the key never leaves the HSM. Authorize once: one ceremony signs, with your own credential, a delegation binding each SA you custody → its HSM signing key. Each service then signs its credentials as the right identity, with no held private key.
Loading signing-identity status…
—
Subscriptions · collect what's due
Each subscriber authorized a standing charge mandate (their treasury → your lbsb-treasury.impact) at subscribe time. When a period ends, you collect: one ceremony signs the redemption of every due mandate with your own credential — no held key, no per-subscriber prompt.
—
Connect as the corpus owner to view subscriptions.
Treasury · x402 settlements
Per-use payments + subscription charges collected for this corpus's licensed edition — money lands at the lbsb-treasury.impact agent. This ledger fills as charges settle.